Page 2 of 2 FirstFirst 12
Results 11 to 17 of 17

Thread: How secure will be this configuration?

  1. #11
    Senior Member
    Join Date
    Sep 2001
    Posts
    1,027
    You might want to give utilities such as this one http://www.eltima.com/products/application-as-service/
    that wrap programs and run them as a service...

    You might also possibly be able to run the app as another user through the scheduler...

    These are all rather ugly hack solutions, but then again, so is the app..!


    Ammo


    PS: Otherwise, a wise man once told me, while asking about a simililar situation "You are phecked, thus place the blame elswhere!"*


    *You can search the archives for it!
    Credit travels up, blame travels down -- The Boss

  2. #12
    Senior Member nihil's Avatar
    Join Date
    Jul 2003
    Location
    United Kingdom: Bridlington
    Posts
    17,188
    Sorry cacosapo but it really seems like you are between "a rock and a hard place" or "the devil and the deep blue sea" on this one.

    All I can suggest is take your money and run or..............

    Get in a team of wandering spiders...........you should have a plentiful local supply?..........maybe a team of Sydney Funnel Webs as backup? (you want males, one of the few spiders where the male is larger and more dangerous than the female) What I am basically saying is that without physical security, system security is academic.

    Unfortunately you have too many unknowns to solve the equation.

    Good luck

  3. #13
    Senior Member
    Join Date
    Mar 2004
    Location
    Colorado
    Posts
    421
    Is this a situation where you may have over promised and can't deliver?

    There is NEVER a reason to create extraneous liabilities for yourself.

    Part of your job/responsibility is to level with your client about the realities you have explained to us.

    When you manage risk, I don't think it is realistic or smart to sign your name with absolutes.

    Sure you can minimize risk which I think you are doing but be careful about absolutes......

    What is the application by the way? Is there a database involved (even flat file)?

  4. #14
    Senior Member
    Join Date
    Apr 2004
    Posts
    1,130
    your are taking this too seriously. Its just a job. I dont know there, but here is pretty common that a client ask me to do some kind of crap, such as "install AD on my 200 employee company using 3 domains and 3 forest because-i-know-that-is-the-best-config". If i cant convice the idiot that is a dumb idea, should i refuse to do the job? No way.
    On every job i do my best, give some advice and warnings, send the report and bill. period.
    I was just looking for other things that i may use to improve the crap that my client ordered.
    No legal problems-- my client is aware that he is in trouble but -- he wants that and i think that i need to do my best, EVEN that the request is foolish.
    "client is allways right" -- we use to say here

    BTW, im trying Ammo solution with the demo provided and aparently is working,
    Meu sítio

    FORMAT C: Yes ...Yes??? ...Nooooo!!! ^C ^C ^C ^C ^C
    If I die before I sleep, I pray the Lord my soul to encrypt.
    If I die before I wake, I pray the Lord my soul to brake.

  5. #15
    Banned
    Join Date
    May 2003
    Posts
    1,004
    If i cant convice the idiot that is a dumb idea, should i refuse to do the job? No way.
    You need better negotiating skills.

    cheers,

    catch

  6. #16
    Senior Member
    Join Date
    Apr 2004
    Posts
    1,130
    You need better negotiating skills.
    Nope, i need smart clients, but they are in extinction.

    Ammo' solution looks to work fine, (tks again ammo) but:
    a) client doesnt want to pay
    b) client is affraid that application will crash because vendor cant guarantee that it will work forever...(man, tks God ihe will pay me good money or i swear that i will shot this guy)

    So, i pointed on my report the problems of that solution, (including physical access), and what are the reasons that i cant solve them. Also i advice the client to try to change (with the vendor) the application to allow it to "fit" on best pratices. Ive closed the report and sent the bill.

    Tks, guys for your support.
    Now, next client
    Meu sítio

    FORMAT C: Yes ...Yes??? ...Nooooo!!! ^C ^C ^C ^C ^C
    If I die before I sleep, I pray the Lord my soul to encrypt.
    If I die before I wake, I pray the Lord my soul to brake.

  7. #17
    Senior Member
    Join Date
    Sep 2001
    Posts
    1,027
    Haha! Client doesn't want to pay!? Man, a single license of that util only costs 80 bucks. This can only mean that you're doing something wrong... dude, you're not charging him enough!!!


    Ammo
    Credit travels up, blame travels down -- The Boss

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •